We are looking for a Security Engineer with strong technical acumen who can immediately design, prioritize, and implement risk-reducing technical solutions across complex cloud and enterprise environments. This role emphasizes solution engineering over process engineering — using established information security frameworks, policies, and controls as direct inputs to build practical, automatable, and scalable technical safeguards.
The ideal candidate thinks like an engineer first and a security risk professional second: someone who already understands how systems fail, how controls are enforced through code and architecture, and how risk and compliance intent translate into resilient technical designs — without requiring extended ramp-up time on RAC fundamentals.
ResponsibilitiesKey Responsibilities
Engineer technical risk solutions that reduce operational, cyber, and resilience risk through architecture, automation, and control design — starting on day one with minimal onboarding.
Translate risk requirements, policies, and standards into implementable technical patterns, guardrails, and reference architectures.
Prioritize and influence solution design decisions based on risk impact, blast radius, and recovery dependencies.
Partner with platform, cloud, security, and SRE teams to embed risk controls directly into infrastructure and pipelines.
Evaluate control effectiveness using technical signals and evidence, not just procedural compliance checklists.
Independently support the requirements of internal control, internal audit, and external audit engagements, including evidence gathering, control testing, and remediation tracking.
Deploy and manage security software, assess and apply required security patches on Security Appliances (servers).
Support the Security Appliances 24x7 on-call rotation to enable continuous data collection.
Drive initiatives such as secure cloud architecture, isolated recovery environments, identity and access hardening, and infrastructure resilience.
Provide informed, immediate guidance on risk tradeoffs and compliance requirements to engineering and business stakeholders.
Contribute to lightweight process definition where needed, always in service of enabling better technical and audit outcomes.
Required Technical Skills
Risk, Audit & Compliance Frameworks: Direct working experience with frameworks such as NIST, ISO 27001, SOX, PCI-DSS, or similar, and demonstrated ability to map controls to technical implementations.
Data Analytics: Proficiency with GCP BigQuery, Power BI (or similar) for visualizing risk posture and audit evidence.
Configuration Management / Automation: Ansible, REST API, Terraform.
Programming / Scripting: Python, Linux Bash, Windows PowerShell, SQL.
Cloud Platforms: Google Cloud Platform (GCP), Azure, AWS.
Supporting Knowledge (nice to have):
Cloud IAM, networking, and control planes
CI/CD pipelines and policy-as-code
Familiarity with Agentic AI frameworks
Observability, logging, and evidence automation
Backup, recovery, and resilience architectures
Required Qualifications
7+ years of experience in security engineering, platform engineering, SRE, or technical risk roles, with a significant portion spent directly supporting risk, audit, or compliance functions.
Demonstrated, ready-to-apply experience with audit lifecycles, control testing, and compliance evidence collection — able to engage with auditors and risk stakeholders immediately without extensive training.
Proven ability to design and influence technical solutions across teams.
Strong understanding of how risk manifests in distributed systems, cloud platforms, and automation.
Comfortable operating at the intersection of engineering teams and risk/compliance stakeholders.
Ability to explain complex technical risk concepts to non-technical audiences without losing fidelity.
Experience in production support and troubleshooting.
Skills Required
- 7+ years of experience in security engineering, platform engineering, SRE, or technical risk roles
- Significant experience directly supporting risk, audit, or compliance functions
- Working experience with NIST, ISO 27001, SOX, PCI-DSS, or similar frameworks
- Ability to map security and compliance controls to technical implementations
- Experience with audit lifecycles, control testing, and compliance evidence collection
- Ability to design and influence technical solutions across teams
- Understanding of risk in distributed systems, cloud platforms, and automation
- Ability to work with engineering teams and risk or compliance stakeholders
- Ability to explain complex technical risk concepts to nontechnical audiences
- Production support and troubleshooting experience
- Proficiency with GCP BigQuery and Power BI or similar tools
- Experience with Ansible, REST API, and Terraform
- Programming or scripting experience with Python, Linux Bash, Windows PowerShell, and SQL
- Experience with Google Cloud Platform, Microsoft Azure, and Amazon Web Services
- Knowledge of cloud IAM, networking, and control planes
- Knowledge of CI/CD pipelines and policy-as-code
- Familiarity with Agentic AI frameworks
- Knowledge of observability, logging, evidence automation, backup, recovery, and resilience architectures
Ford Motor Company Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Ford Motor Company and has not been reviewed or approved by Ford Motor Company.
-
Healthcare Strength — Medical, dental, and vision coverage start on day one with options that include zero-premium plans, free mental health support, and wellness resources. For represented hourly employees, health plans are described as low-cost with strong coverage value.
-
Retirement Support — A 401(k) with company match and additional company contributions is available from day one, alongside life and disability coverage. Pension eligibility in certain situations and financial-planning support reinforce long‑term security.
-
Parental & Family Support — Paid parental leave, fertility, surrogacy, and adoption benefits, plus a ramp‑up program for returning parents, reflect a family‑focused package. Flexible Family Care days and generous time‑off options help address short‑term caregiving and personal needs.
Ford Motor Company Insights
What We Do
Ford is a global company with shared ideals and a deep sense of family. From our earliest days as a pioneer of modern transportation, we have sought to make the world a better place – one that benefits lives, communities and the planet. We are here to provide the means for every person to move and pursue their dreams, serving as a bridge between personal freedom and the future of mobility. In that pursuit, our 186,000 employees around the world help to set the pace of innovation every day.









